← Back

CVE-2022-23690

nvd nist
Published: Sep 6, 2022Modified: Nov 21, 2024

JSON object

Loading...
5.3
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Exploitability: 3.9 / Impact: 1.4
Source: NVD

Description

A vulnerability in the web-based management interface of AOS-CX could allow a remote unauthenticated attacker to fingerprint the exact version AOS-CX running on the switch. This allows an attacker to retrieve information which could be used to more precisely target the switch for further exploitation in ArubaOS-CX Switches version(s): AOS-CX 10.10.xxxx: 10.10.0002 and below, AOS-CX 10.09.xxxx: 10.09.1020 and below, AOS-CX 10.08.xxxx: 10.08.1060 and below, AOS-CX 10.06.xxxx: 10.06.0200 and below. Aruba has released upgrades for ArubaOS-CX Switch Devices that address this security vulnerability.

Affected (4)

1 product
Aos Cx
Configuration A
1 platform
Running on/withPlatform Versions
Arubanetworks
Cx 10000
All versions
Configuration B
1 platform
Running on/withPlatform Versions
Arubanetworks
Cx 8325
All versions
Configuration C
1 platform
Running on/withPlatform Versions
Arubanetworks
Cx 8320
All versions
Configuration D
1 platform
Running on/withPlatform Versions
Arubanetworks
Cx 9300
All versions
Configuration E
1 platform
Running on/withPlatform Versions
Arubanetworks
Cx 8360
All versions
Configuration F
1 platform
Running on/withPlatform Versions
Arubanetworks
Cx 6400
All versions
Configuration G
1 platform
Running on/withPlatform Versions
Arubanetworks
Cx 6300
All versions
Configuration H
1 platform
Running on/withPlatform Versions
Arubanetworks
Cx 6200f
All versions
Configuration I
1 platform
Running on/withPlatform Versions
Arubanetworks
Cx 6100
All versions
Configuration J
1 platform
Running on/withPlatform Versions
Arubanetworks
Cx 6000
All versions
Configuration K
1 platform
Running on/withPlatform Versions
Arubanetworks
Cx 4100i
All versions
Configuration L
4 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Arubanetworks
From 10.06.0000 to 10.06.0200
From 10.08.0000 to 10.08.1060
From 10.09.0000 to 10.09.1020
From 10.10.0000 to 10.10.0002
Running on/withPlatform Versions
Arubanetworks
Cx 8400
All versions

References (2)

Source: security-alert@hpe.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.